Security Tester Resume
4.00/5 (Submit Your Rating)
SUMMARY
- Having 4+ years of professional experience in the Software Industry with 1.5 years in Application Security Testing and 3 years in Manual Game Testing .
- Knowledge in Application Security Architecture and OWASP Top 10 Web application security risks.
- Hands on Experience in DAST (Dynamic Application Security Testing) using ZAP, Burp Suite Professional tool.
- Knowledge in SAST (Static Application Security Testing) using Sonarqube,Analyzing the reports for false positives and reviewing the Code for JAVA, .Net and C# applications.
- Performed Web Application Penetration testing .
- Performed Web application Vulnerability scanning, finding Business logic flaws, exploiting vulnerability,proof - of-concepts generation and Reporting.
- Good exposure to Passive security testing using ZAP.
- Knowledge in Qualys Web Application Scanning and Wireshark Packet Analyzer.
- Experience in analyzing functional requirements and translating them to test cases.
- Well acquainted with Software Development Life Cycle (SDLC) and Software Testing Life Cycle (STLC).
- Performed Functional Testing, Integration Testing,Regression Testing,Compatibility Testing and Exploratory Testing .
- Reviewed test cases for peers and given valuable comments about test case coverage and functionality.
- Prepared Traceability Matrix to ensure the test coverage for all requirements.
- Experience in Defect Management tool - DISC, JIRA
- Good Experience in using Test Management Tool - Test Rail
- Experience in Test Data Setup tool - Papyrus, Spanner
- Working experience on the preparation and execution of the Quality and Infosec Audits, which includes daily status report, Weekly meetings, Productivity and Review Efficiency.
- Working experience in localisation and language testing for games.
- Working experience in Playcheck and Help Files testing.
- Interacted with the Business Users and the client to test according to their requirements.
TECHNICAL SKILLS
Web Proxy Tools: Burp Suite Professional,OWASP ZAP
Penetration Testing Tools: QualysGuard
Packet Analyzer: Wireshark
Protocols: TCP/IP,HTTP
Game TestingTools: Test Rail, DISC, JIRA, Papyrus
Programming Languages: Core Java
Web Technologies: HTML,CSS
Databases: SQL,Oracle
Operating System: Windows XP,Mac,Windows 10
PROFESSIONAL EXPERIENCE
Security Tester
Confidential
Responsibilities:
- Reviewing the security requirements, Application architecture and design.
- Write/identify Test cases scenarios for security testing for target application.
- Setting up a test environment/ Lab for security testing.
- Conducting application Vulnerability assessment /penetration testing as per the OWASP testing Methodology
- Conducting application penetration testing using combination of automated and manual exploitation and creative thinking; analyse results to determine false positives and provide actionable mitigations.
- Working with developers and administrators to remediate identified vulnerabilities
- Helping security-engineering team to create Intellectual property documents
- Preparing Security vulnerability client presentable report.
Manual Tester
Confidential
Responsibilities:
- As per the Requirements preparing estimates for writing the test cases and executing them.
- Working on Agile Testing and attending daily stand-ups, Scrum meetings and Sprint Planning.
- Reporting, validating, and closing the bugs.
- Weekly meetings with the client to get the updated requirement and maintain the daily status report.
- Raising the defects in Disc and capturing the Videos for the defects.
- Executing the Test Cases in TestRail and updating the status in TestRail.
- Capturing the matrix for the audit purpose including the Quality and Infosec Audit
- Conducted trainings for the new team members regarding games and tools
- Completed the test cycles within the given timelines.
- Worked on Requirement Traceability matrix.
- Prepared Defect Leakage Metrics for Client Representation
Manual Tester
Confidential
Responsibilities:
- Understanding the Functional Specification
- Involved in understanding the project according to the Business Requirement Specifications
- Involved in writing and executing Test cases
- Involved in Software Testing Life Cycle
- Involved in discussions with the respective development team for the required clarification on the new functionality for all respective assigned modules.
- Involved in team meetings in regular intervals to monitor the Quality of the application.
Manual Tester
Confidential
Responsibilities:
- As a team member I was actively involved in the below phases of project:
- Understanding the Functional Specification
- Involved in understanding the project according to the Business Requirement Specifications.
- Involved in SDLC life cycle process and also involved in preparation & execution of new functional & UI modules
- Involved in discussions with the respective development for the required clarification on the new functionality for all respective assigned modules.
- Involved in team meetings in regular intervals to monitor the Quality of the application